Get-ContentRaw - gets the content of a file from its raw bytes on disk

Get-Hash - returns a cryptographic hash for the specified file

Get-Timezone - determines a system'stimezone based on the registry setting

– Formatters:

1

Format-Hex-Formats bytearrayoutput intoahexdump

Module Installation:
The easiest way to install PowerForensics is through the Install-Module cmdlet. This is available by default in Windows 10, but can also be installed via the Windows Management Framework or the standalone MSI installer: